GMER 1.0.15.15530 - http://www.gmer.net Rootkit scan 2010-11-17 20:13:31 Windows 5.1.2600 Dodatek Service Pack 2 Harddisk0\DR0 -> \Device\Ide\IdeDeviceP0T0L0-3 FUJITSU_MHV2160BT rev.00000013 Running: o1738rog[1].exe; Driver: C:\DOCUME~1\ewe\USTAWI~1\Temp\pwloyfoc.sys ---- System - GMER 1.0.15 ---- SSDT F8BF018E ZwCreateKey SSDT F8BF0184 ZwCreateThread SSDT F8BF0193 ZwDeleteKey SSDT F8BF019D ZwDeleteValueKey SSDT F8BF01A2 ZwLoadKey SSDT F8BF0170 ZwOpenProcess SSDT F8BF0175 ZwOpenThread SSDT F8BF01AC ZwReplaceKey SSDT F8BF01A7 ZwRestoreKey SSDT F8BF0198 ZwSetValueKey ---- Kernel code sections - GMER 1.0.15 ---- .text C:\WINDOWS\system32\DRIVERS\nv4_mini.sys section is writeable [0xF7F6B360, 0x21DDFD, 0xE8000020] init C:\WINDOWS\system32\drivers\tifm21.sys entry point in "init" section [0xF7C95EBF] ---- EOF - GMER 1.0.15 ----